Tony Hain alh-ietf at tndh.net
Wed Feb 18 21:36:13 UTC 2009

Owen DeLong wrote:
> ...
> If you want SLAAC or RA or whatever, more power to you.  Some
> installations
> do not.  They want DHCP equivalent functionality with the same
> security model.

It is always amusing when people equate DHCP with security...  Outside of
that, I do agree  with you that the operational model around DHCP needs to
be complete and stand-alone, just as the RA model needs to be. Right now
neither works stand-alone.

FWIW: there is SEND (RFC 3971) to deal with rouge RA's and other miscreant
behavior. Implementations have been slow to come to market because network
operators are not demanding it from their vendors.


